CVE Feed

    Dashboard / CVE / CVE-2019-1695

    CVE-2019-1695

    A vulnerability in the detection engine of Cisco Adaptive Security Appliance (ASA) Software and Cisco Firepower Threat Defense (FTD) Software could allow an unauthenticated, adjacent attacker to send data directly to the kernel of an affected device. The vulnerability exists because the software improperly filters Ethernet frames sent to an affected device. An attacker could exploit this vulnerability by sending crafted packets to the management interface of an affected device. A successful exploit could allow the attacker to bypass the Layer 2 (L2) filters and send data directly to the kernel of the affected device. A malicious frame successfully delivered would make the target device generate a specific syslog entry.

    Published:May 3, 2019
    Last Modified:Aug 11, 2026
    EPS:May 3, 2019
    EPSS Score:0.00706
    CVSS Score:6.5

    Affected Products

    Vendor
    Cisco
    Product
    Adaptive Security Appliance Software
    Vendor
    Cisco
    Product
    Firepower 2110
    Vendor
    Cisco
    Product
    Firepower 2120
    Vendor
    Cisco
    Product
    Firepower 2130
    Vendor
    Cisco
    Product
    Firepower 2140
    Vendor
    Cisco
    Product
    Secure Firewall Threat Defense

    Exploits

    No exploit reference

    Common Weakness Enumeration

    Related CVEs

    Common Vulnerability Scoring System

    Attack Vector
    Network
    Adjacent
    Local
    Physical
    Privileges Required
    None
    Low
    High
    User Interaction
    None
    Required
    Scope
    Unchanged
    Changed
    Confidentiality
    None
    Low
    High
    Integrity
    None
    Low
    High
    Availability
    None
    Low
    High